WebApp Sec mailing list archives

Re: SSL 2.0 enabled or disabled?


From: James Bowman <jim () drexel edu>
Date: 24 May 2004 14:58:39 -0000

In-Reply-To: <20040519021346.E1E8F7274 () sitemail everyone net>

We have a fully patched MS server shop asking for specific reasons why they should disable SSL V2 and PCT 1.0.

Yes, we're pushing the "less is best" approach WRT unnecessary protocol support, but what else can we add to help with 
the justification?




Current thread: